[CVE-2020-13656] OOB to RCE: Exploitation of the Hobbes Functional Interpreter
bishopfox.com | vulnerability | CVE-2020-13656 | #rce | #open-source | #exploit | #memory-corruption | #cve-2020-13656 | #interpreter
Summary
Jake Miller details CVE-2020-13656 in Morgan Stanley's Hobbes interpreter: missing array bounds checking yields an out-of-bounds read/write primitive leading to local and remote code execution.
- Published
- Collected
Skip to content